Open source api-security projects
Every project in the registry tagged api-security, ranked by real GitHub adoption.
Shannon is an AI pentester for web applications and APIs. It analyzes your source code, identifies attack vectors, and executes real exploits to prove vulnerabi
Industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.
Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.
Frequently asked questions
How many open source api-security projects are there?
This registry tracks 3 projects tagged api-security, with 50,485 GitHub stars between them. The most-adopted is shannon at 48,118 stars.
Are these api-security projects free to use?
Yes — 3 of the 3 carry an explicit open-source licence across 3 distinct licences, so there is no licence fee. Where a project also sells a hosted or enterprise version, the self-hosted path remains free.
Which api-security project should I choose?
The list above is ranked by GitHub stars, but stars measure attention rather than fit. Check three things on each card: the licence (permissive versus copyleft), the language it is written in, and the last-push date — a high-star project that has not been pushed in a year is a liability.
Are these api-security projects still maintained?
2 of the 3 were pushed in the last 90 days, and every card shows its exact last-push date so you can see the rest. Sort your shortlist by that date before committing to a migration.